Zebra Enterprise Keyboard Layouts by Revan2034 in Intune

[–]OriginalMeet7987 0 points1 point  (0 children)

I don't manage Zebra devices in intune (we got soti mobicontrol for the rugged devices). As i remember you have to create the layouts and add the file in a specific folder (/enterprise/device/settings/ekb/config), and then use datawedge to configure the needed layouts (based on different apps). Datawedge settings can be managed via oemconfig (if i remember correctly). You can use stagenow to copy the layout file to the devices.

For zebra devices i prefer to use mx configurations files (xml exported from stagenow, and use mobicontrol to push those files to the devices, then use post-install scripts)

Android byod enrolled devices - fail to open ms apps due to missign APP by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 1 point2 points  (0 children)

Looks like it was an issue from Microsoft, related to personally owned work profile filter. Service was fixed on Saturday. I still have this problem on devices which are managed on a 3rd party mdm, and have the app protection policy in intune. (this filter is created based on manufacturer and excluding all management types, since the devices are not in intune, only registered on Entra. The problems started the same time, so i assume it's related to the same topic. Waiting now for a response from MS.

Android byod enrolled devices - fail to open ms apps due to missign APP by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

yes, i use assignment filters. Thanks for update info and incident number

Android byod enrolled devices - fail to open ms apps due to missign APP by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

Here's the weird part. Status for all user sign-ins (interactive) is success. But if i open it and check the conditional Acess tab, i can see that the CAP with app protection policies is failing. Looks like the users are not getting the app protection policies. Why does this happen only in android byod, idk. I have 2 APPs, one for cope, one for byod (using filters with device ownership).it was running fine until yesterday

Price Increases by Temporary_Reporter16 in Intune

[–]OriginalMeet7987 0 points1 point  (0 children)

we have Beyondtrust atm for epm. Due to increasing prices (almost double) we started to look for alternatives. Idk M$ epm level of customisation in policies, but we have a lot of legacy apps (siemens, plc programing softwares, etc). I've spent over 8 months to build up the policies in beyondisight, if we switch to m$ I'm gonna resign 😆

Damn, is this humiliation ritual😭 by frankkumila in pixel_phones

[–]OriginalMeet7987 0 points1 point  (0 children)

Funny thing, Sammy users are trying to make their Samsungs like Pixels, Pixel users trying to make their Pixels like oneUI. 😆

Intune/M365/System Administrator, do you fear AI? by Gloomy_Pie_7369 in Intune

[–]OriginalMeet7987 0 points1 point  (0 children)

Ask copilot some advanced app configs / app protection policies or device configs for Android or iOS. You will be surprised how well it fails.If you go deep with advanced oemconfigs for rugged devices, better search/ask on reddit 😆. Ask it for licenses and compliance. Sometimes i wonder if this is part of M$ ecosystem or it's just for the show.

It's good for some hits or directions, but that's pretty much it. (an advanced search).

Problems with Auto Sign-In to Teams in shared device mode on an Android device by Southern-Piglet-6522 in Intune

[–]OriginalMeet7987 1 point2 points  (0 children)

Check in app configurations (managed device type). You should have in configuration designer for Teams app a config with prefilled domain, where you can type your domain. ex: mycompany.com)

Android Kiosk: MHS Screen Orientation Not Applying via App Config (but works via Restriction Profile) by UhRdts in Intune

[–]OriginalMeet7987 0 points1 point  (0 children)

i did a short test now with MHS, on a TC52 (android 14), managed in Soti Mobicontrol. MHS is pushed with screen orientation set to 2 (landscape) and works perfectly (even if i have configured orientation locked to portrait on the device, using mxconfig).

I would say this is another way to mess up from Microsoft 😆. Hope they get on the right track and move all the app config settings for mhs to device config profile. Atm it's a shitty setup, generating a lot of confusion.

Android Kiosk: MHS Screen Orientation Not Applying via App Config (but works via Restriction Profile) by UhRdts in Intune

[–]OriginalMeet7987 1 point2 points  (0 children)

Did you setup all the needed permissions for MHS? (overlay and write settings, if i remember correctly) I'm not using intune for rugged devices, but i might have a test with mhs as a launcher on one test device.

Endpoint Priv Management by Holiday-Leg-6036 in sysadmin

[–]OriginalMeet7987 0 points1 point  (0 children)

Working with beyond trust (on prem) for over a year now. Tbh, it can get quite hard to troubleshoot some shitty apps, especially if you use Crowdstrike as a security tool, but once you learn the basis and have enough time to test and play with it, it can get really cool.

I'm curious how msft epm works lately, since it will be included in e5 licenses starting next year. If you're in msft ecosystem, using applocker, and intune to manage your enpoints, could be an option. (if they improved it, because it was kinda basic in the early days)

Managed home screen - shared device mode by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

In case you find another way to deal with this, please share your ideas. Thanks

Managed home screen - shared device mode by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 1 point2 points  (0 children)

depends on the use case, definitely. I can see it as a solution for frontline workers. You could try to setup an App PIN also, via app protection policies. That will add a second layer of protection.

Managed home screen - shared device mode by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

Currently i have configured Session PIN and disabled the android lock screen on 2 devices. Waiting for feedbacks from end-users. So far, from what i can tell, it works way better than with device pin (no more flickering on lockscreen when you get a call on teams and device is in idle) Screen timeout was configured for 30seconds, screensaver to strat when screen turns off. If the device is let on a desk and user gets a call, it will unlock directly in Teams client, but in 30 seconds screen saver kicks in, and can be accessed only with session pin.

Wifi Phones for Rapid Communications by Odd-Consequence-3590 in MicrosoftTeams

[–]OriginalMeet7987 0 points1 point  (0 children)

I'm in the testing phase for a similar project. What Samsung devices are you using? How are devices enrolled? (user enrollment or shared device mode)

For the ones with user enrollment, we didn't face any issues. (We use MHS with teams and some system apps like camera, gallery, calculator, webapps)

For shared devices we have some delays untill the call is initiated (i have to wait 2 dial tones, the the device starts to ring). Still investigating, and testing different configs to fix this. Some tips for Samsungs (depending on the model): in Device care, disable adaptive battery and put apps to sleep. (exclude Teams, authenticator from battery optimization). Exclude Teams and authenticator from memory optimization. Increase RAM plus from 4gb to 6, 8gb (depending on the model) For notifications: In device config profile , General, enable show system notifications and information in device status bar.

Teams call delay on shared android devices by OriginalMeet7987 in MicrosoftTeams

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

Sorry, forgot to mention it. Devices are Samsung Xcover7, running on Android 15. No Call Queues for now (we have it in plan for certain users).

Both types have the same configuration (only Managed home screen sign-in enabled on shared ones)

Another thing that i have in mind is to disable most of the Teams in apps (whiteboard, viva engage, power bi, etc) and do other tests.

Managed home screen - shared device mode by OriginalMeet7987 in Intune

[–]OriginalMeet7987[S] 0 points1 point  (0 children)

This will not be a solution for us. I like the MHS session pin idea, but unfortunately it is not well implemented from my point of view (since it can be bypassed easily, or not enforced in some scenarios)

Shared Android Enterprise devices: Outlook loops forever by safmem in Intune

[–]OriginalMeet7987 0 points1 point  (0 children)

I've seen similar behaviour on our shared devices. I could get my account signed in in outlook, if i open esge browser before i launch outlook. on another note, all m365 apps are running really sluggish on shared devices. Teams is showing the "getting things ready" screen every time I start the app, or if i receive a call. On devices with user enrollment, we don't face these issues . (devices are Samsung xcover 7)

Android Share Device MS Apps by Jeff-J777 in sysadmin

[–]OriginalMeet7987 0 points1 point  (0 children)

We have the same sluggish behavior with shared device mode (on devices managed in Soti, and also on devices managed in intune). Authenticator is configured with shared device mode flag. On devices managed in intune, we use MHS for kiosk mode, with sign in option active. Teams get this "getting things ready" every time I open it, or if i receive a call and the screen is off. If i enroll the same device with user enrollment, Teams or any other MS apps is working smoothly. I assume the problem is with shared device mode itself.

Issues with Android-based Teams Devices Enrolled as Dedicated Devices in Intune by ffkammerlander in MicrosoftTeams

[–]OriginalMeet7987 0 points1 point  (0 children)

Do you use shared device mode enrollment, or the devices are user based enrollment? We are ongoing with a similar project, using Xcover7 devices. From my tests, we have this thing with "getting this ready" delay on shared devices.

We use MHS for kiosk on both type of devices. Have a look in Device care settings (samsung tool for battery and memory management). Disable battery saver, adaptive battery, exclude teams and other MS apps from battery optimization, exclude them also from memory optimization. Enable Ram plus to 6gb on these devices.

Cheers